Alerts This Week
Warning Icon 1 637
Alerts This Week
Warning Icon 1 637

Fedora 43 libmicrohttpd Null Pointer Dereference Advisory 2026-65a08d1312

fedora
Calendar Grey April 12, 2026
Dist Fedora Esm H88
Latest update for Fedora 43 addresses null pointer dereference in libmicrohttpd to ensure improved security and stability.
Update to 1.0.3-1

Summary

GNU libmicrohttpd is a small C library that is supposed to make it

easy to run an HTTP server as part of another application.

Key features that distinguish libmicrohttpd from other projects are:

* C library: fast and small

* API is simple, expressive and fully reentrant

* Implementation is http 1.1 compliant

* HTTP server can listen on multiple ports

* Support for IPv6

* Support for incremental processing of POST data

* Creates binary of only 25k (for now)

* Three different threading models

Update Information:

Update to 1.0.3-1

Change Log

* Thu Apr 2 2026 Martin Gansser - 1:1.0.3-1 - Update to 1:1.0.3 * Fri Jan 16 2026 Fedora Release Engineering - 1:1.0.2-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_44_Mass_Rebuild

References


[ 1 ] Bug #2413882 - CVE-2025-59777 libmicrohttpd: GNU libmicrohttpd null pointer dereference [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2413882 [ 2 ] Bug #2413888 - CVE-2025-59777 libmicrohttpd: GNU libmicrohttpd null pointer dereference [fedora-43] https://bugzilla.redhat.com/show_bug.cgi?id=2413888 [ 3 ] Bug #2413893 - CVE-2025-62689 libmicrohttpd: GNU libmicrohttpd null pointer dereference [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2413893 [ 4 ] Bug #2413896 - CVE-2025-62689 libmicrohttpd: GNU libmicrohttpd null pointer dereference [fedora-43] https://bugzilla.redhat.com/show_bug.cgi?id=2413896 [ 5 ] Bug #2454160 - libmicrohttpd-1.0.3 is available https://bugzilla.redhat.com/show_bug.cgi?id=2454160

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-65a08d1312' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
important
Lowest
Low
Medium
High
Critical

Name: libmicrohttpd
Product: Fedora 43
Version: 1.0.3
Release: 1.fc43
Summary: Lightweight library for embedding a webserver in applications

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here